CVE-2010-4072
- EPSS 0.1%
- Veröffentlicht 29.11.2010 16:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmct...
CVE-2010-4073
- EPSS 0.24%
- Veröffentlicht 29.11.2010 16:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ipc subsystem in the Linux kernel before 2.6.37-rc1 does not initialize certain structures, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the (1) compat_sys_semctl, (2) compat...
CVE-2010-3437
- EPSS 1.83%
- Veröffentlicht 04.10.2010 21:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of service (invalid pointer dere...
CVE-2010-3442
- EPSS 0.17%
- Veröffentlicht 04.10.2010 21:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a...
CVE-2010-3067
- EPSS 0.08%
- Veröffentlicht 21.09.2010 18:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact via crafted use of the io_submit system call.
CVE-2010-2226
- EPSS 0.08%
- Veröffentlicht 03.09.2010 20:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before 2.6.35 does not properly check the file descriptors passed to the SWAPEXT ioctl, which allows local users to leverage write access and obtain read access by swapping one file i...
CVE-2010-2753
- EPSS 4.09%
- Veröffentlicht 30.07.2010 20:30:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allows remote attackers to execute arbitrary code via a large selection attribute in a X...
CVE-2009-2910
- EPSS 0.05%
- Veröffentlicht 20.10.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.31.4 on the x86_64 platform does not clear certain kernel registers before a return to user mode, which allows local users to read register values from an earlier process by switching an ia32 p...
CVE-2009-3612
- EPSS 0.07%
- Veröffentlicht 19.10.2009 20:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The tcf_fill_node function in net/sched/cls_api.c in the netlink subsystem in the Linux kernel 2.6.x before 2.6.32-rc5, and 2.4.37.6 and earlier, does not initialize a certain tcm__pad2 structure member, which might allow local users to obtain sensit...
CVE-2009-2903
- EPSS 3.77%
- Veröffentlicht 15.09.2009 22:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Memory leak in the appletalk subsystem in the Linux kernel 2.4.x through 2.4.37.6 and 2.6.x through 2.6.31, when the appletalk and ipddp modules are loaded but the ipddp"N" device is not found, allows remote attackers to cause a denial of service (me...